<?php

/**
 * LoginForm class.
 * LoginForm is the data structure for keeping
 * user login form data. It is used by the 'login' action of 'SiteController'.
 */
class LoginForm extends CFormModel
{
	public $username;
	public $password;
	public $rememberMe;
	private $_identity;

	/**
	 * Declares the validation rules.
	 * The rules state that username and password are required,
	 * and password needs to be authenticated.
	 */
	public function rules()
	{
		return array(
			// username and password are required
			array('username', 'required',"message"=>"用户名必须填写"),
			array('password', 'required',"message"=>"密码必须填写"),
			// rememberMe needs to be a boolean
			array('rememberMe', 'boolean'),
			// password needs to be authenticated
			//校验真实用户名和密码
			
			array('password', 'authenticate'),
		);
	}

	/**
	 * Declares attribute labels.
	 */
	public function attributeLabels()
	{
		return array(
			'username' => '用户登录',
			'password' => '密　　码',
			'rememberMe'=>'下次自动登陆(保存两周，在公共环境勿选)',
		);
	}

	/**
	 * Authenticates the password.
	 * This is the 'authenticate' validator as declared in rules().
	 */
	public function authenticate($attribute,$params)
	{
		if(!$this->hasErrors())
		{
			$this->_identity=new UserIdentity($this->username,$this->password);
			if(!$this->_identity->authenticate())
				$this->addError('password','用户名或密码错误');
		}
	} 

	/**
	 * Logs in the user using the given username and password in the model.
	 * @return boolean whether login is successful
	 */
	public function login()
	{
		if($this->_identity===null)
		{
			$this->_identity=new UserIdentity($this->username,$this->password);
			$this->_identity->authenticate();
		}
		if($this->_identity->errorCode===UserIdentity::ERROR_NONE)
		{
//			$duration=$this->rememberMe ? 3600*24*30 : 0; // 30 days
			$duration=$this->rememberMe ? 3600*24*14 : 0;//14 days
			Yii::app()->user->login($this->_identity,$duration);//设置Cookie信息
			return true;
		}
		else
			return false;
	}
	
	//登陆成功的提示
	public function _success($_string,$_url){
		echo "<script type='text/javascript'>alert('".$_string."');location.href='".$_url."';</script>";
	}
	//登陆失败的提示
	public function _error($_string){
		echo "<script type='text/javascript'>alert('".$_string."');</script>";
	}
}
